%% You should probably cite draft-grimminck-safe-ioc-sharing-12 instead of this revision. @techreport{grimminck-safe-ioc-sharing-03, number = {draft-grimminck-safe-ioc-sharing-03}, type = {Internet-Draft}, institution = {Internet Engineering Task Force}, publisher = {Internet Engineering Task Force}, note = {Work in Progress}, url = {https://datatracker.ietf.org/doc/draft-grimminck-safe-ioc-sharing/03/}, author = {Stefan Grimminck}, title = {{A Standard for Safe and Reversible Sharing of Malicious URLs and Indicators}}, pagetotal = 6, year = 2025, month = apr, day = 9, abstract = {This document defines a consistent and reversible method for sharing potentially malicious indicators of compromise (IOCs), such as URLs, IP addresses, email addresses, and domain names. It introduces a safe obfuscation format to prevent accidental execution or activation when IOCs are displayed or transmitted. These techniques aim to standardize the safe dissemination of threat intelligence data. This specification uses the URI syntax defined in RFC 3986 and follows the key word conventions from RFC 2119.}, }